2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-47964HIGH8.8Schlix CMS 2.2.6-6 contains a remote code execution vulnerability that allows authenticated attackers to execute arbitra...
CVE-2021-47963HIGH7.2Anote 1.0 contains a persistent cross-site scripting vulnerability that allows attackers to execute arbitrary code by in...
CVE-2021-47959HIGH8.7WordPress Plugin WPGraphQL 1.3.5 contains a denial of service vulnerability that allows unauthenticated attackers to exh...
CVE-2021-47949HIGH8.8CyberPanel 2.1 contains a command execution vulnerability that allows authenticated attackers to read arbitrary files an...
CVE-2021-47945HIGH8.5Argus Surveillance DVR 4.0 contains an unquoted service path vulnerability in the DVRWatchdog service that allows local ...
CVE-2021-47944HIGH8.7memono Notepad 4.2 contains a denial of service vulnerability that allows attackers to crash the application by pasting ...
CVE-2021-47943HIGH8.8TextPattern CMS 4.8.7 contains a remote code execution vulnerability that allows authenticated attackers to execute arbi...
CVE-2021-47941HIGH8.8WordPress Plugin Survey & Poll 1.5.7.3 contains an SQL injection vulnerability that allows unauthenticated attackers to ...
CVE-2021-47939HIGH8.8Evolution CMS 3.1.6 contains a remote code execution vulnerability that allows authenticated users with module creation ...
CVE-2021-47938HIGH8.8ImpressCMS 1.4.2 contains a remote code execution vulnerability in the autotasks administrative interface that allows au...
CVE-2021-47937HIGH8.8e107 CMS 2.3.0 contains a remote code execution vulnerability that allows authenticated users with theme installation pe...
CVE-2021-47935HIGH8.8Sentry 8.2.0 contains a remote code execution vulnerability that allows authenticated superusers to execute arbitrary co...
CVE-2021-47930HIGH8.8Balbooa Joomla Forms Builder 2.0.6 contains an unauthenticated SQL injection vulnerability in the form submission handle...
CVE-2021-47928HIGH8.8Opencart TMD Vendor System 3.x contains a blind SQL injection vulnerability that allows unauthenticated attackers to ext...
CVE-2021-47961HIGH8.1A plaintext storage of a password vulnerability in Synology SSL VPN Client before 1.4.5-0684 allows remote attackers to ...
CVE-2021-35486HIGH8.1A Cross-Site Request Forgery (CSRF) vulnerability in Nokia IMPACT through 19.11.2.10-20210118042150283 allows a remote a...
CVE-2021-35485HIGH8The Applications component of Nokia IMPACT version through 19.11.2.10-20210118042150283 allows an authenticated user to ...
CVE-2021-35484HIGH8.2Nokia IMPACT through 19.11.2.10-20210118042150283 allows an authenticated user to perform a Time-based Boolean Blind SQL...
CVE-2021-26381HIGH7.1Improper system call parameter validation in the Trusted OS may allow a malicious driver to perform mapping or unmapping...
CVE-2021-47921HIGH7.1Free Photo & Video Vault 0.0.2 contains a directory traversal web vulnerability that allows remote attackers to manipula...
CVE-2021-47918HIGH8.8Simple CMS 2.1 contains a remote SQL injection vulnerability that allows privileged attackers to inject unfiltered SQL c...
CVE-2021-47915HIGH8.8PHP Melody version 3.0 contains a remote SQL injection vulnerability in the video edit module that allows authenticated ...
CVE-2021-47909HIGH8.6Mult-E-Cart Ultimate 2.4 contains multiple SQL injection vulnerabilities in inventory, customer, vendor, and order modul...
CVE-2021-47902HIGH8.8Testa Online Test Management System 3.4.7 contains a SQL injection vulnerability that allows attackers to manipulate dat...
CVE-2021-47904HIGH8.8PhreeBooks 5.2.3 contains an authenticated file upload vulnerability in the Image Manager that allows remote code execut...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now